infisical-pki

Pass

Audited by Gen Agent Trust Hub on Aug 26, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPRIVILEGE_ESCALATION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill provides instructions for downloading the Infisical Key Storage Provider (KSP) binary from the vendor's official GitHub repository.
  • Evidence: Invoke-WebRequest -Uri "https://github.com/Infisical/infisical-ksp/releases/latest/download/infisical-ksp.dll" in references/code-signing.md.
  • [COMMAND_EXECUTION]: Includes standard instructions for installing and configuring native security modules and libraries.
  • Evidence: Configuration of INFISICAL_CONFIG and registration of DLLs in references/code-signing.md.
  • [PRIVILEGE_ESCALATION]: Describes the use of sudo to install the PKCS#11 module into standard system library directories on Linux and macOS.
  • Evidence: sudo cp libinfisical-pkcs11.so /usr/local/lib/ and sudo chmod 755 in references/code-signing.md.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 26, 2026, 11:05 PM
Security Audit — agent-trust-hub — infisical-pki